Логотип exploitDog
bind:CVE-2019-8235
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-8235

Количество 2

Количество 2

nvd логотип

CVE-2019-8235

больше 6 лет назад

An insecure direct object reference (IDOR) vulnerability exists in Magento 2.3 prior to 2.3.1, 2.2 prior to 2.2.8, and 2.1 prior to 2.1.17 versions. An authenticated user may be able to view personally identifiable shipping details of another user due to insufficient validation of user controlled input.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-c242-4v4p-fwr3

больше 3 лет назад

An insecure direct object reference (IDOR) vulnerability exists in Magento 2.3 prior to 2.3.1, 2.2 prior to 2.2.8, and 2.1 prior to 2.1.17 versions. An authenticated user may be able to view personally identifiable shipping details of another user due to insufficient validation of user controlled input.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-8235

An insecure direct object reference (IDOR) vulnerability exists in Magento 2.3 prior to 2.3.1, 2.2 prior to 2.2.8, and 2.1 prior to 2.1.17 versions. An authenticated user may be able to view personally identifiable shipping details of another user due to insufficient validation of user controlled input.

CVSS3: 6.5
0%
Низкий
больше 6 лет назад
github логотип
GHSA-c242-4v4p-fwr3

An insecure direct object reference (IDOR) vulnerability exists in Magento 2.3 prior to 2.3.1, 2.2 prior to 2.2.8, and 2.1 prior to 2.1.17 versions. An authenticated user may be able to view personally identifiable shipping details of another user due to insufficient validation of user controlled input.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу